Steadfast Group · OAuth Scopes
Steadfast Group OAuth Scopes
OAuth 2.0
searched
Steadfast Group publishes 7 OAuth 2.0 scopes via the authorizationCode, implicit, deviceCode, and password flows. Scopes are the fine-grained permissions an application requests at authorization time to act against the Steadfast Group API on a user’s behalf.
Tokens are issued from https://idp.steadfast.com.au/oauth2/v1/token.
This index is generated from the provider’s OpenAPI security definitions (and, where available, its documented scope reference) and refreshes on every APIs.io network build. Browse every provider’s scopes at scopes.apis.io.
InsuranceAustraliaBrokerInsurance Broker NetworkGeneral InsuranceProperty and CasualtyUnderwriting AgencyAgency ManagementACORDPartner GatedNew Zealand
Scopes: 7
Flows: authorizationCode, implicit, deviceCode, password
Method: searched
OAuth endpoints
Authorization URL
https://idp.steadfast.com.au/oauth2/v1/authorize
https://idp.steadfast.com.au/oauth2/v1/authorize
Token URL
https://idp.steadfast.com.au/oauth2/v1/token
https://idp.steadfast.com.au/oauth2/v1/token
Flows
authorizationCodeimplicitdeviceCodepassword
authorizationCodeimplicitdeviceCodepassword
Scopes (7)
| Scope | Description | Flows |
|---|---|---|
| openid | Required to obtain an ID token; identifies the request as an OpenID Connect request. | authorizationCode, implicit, deviceCode, password |
| profile | Access to the end user's default profile claims - name, family_name, given_name, middle_name, nickname, preferred_username, picture, website, gender, birthdate, zoneinfo, locale, updated_at. | authorizationCode, implicit, deviceCode, password |
| Access to the end user's email and email_verified claims. | authorizationCode, implicit, deviceCode, password | |
| address | Access to the end user's address claim. | authorizationCode, implicit, deviceCode, password |
| phone | Access to the end user's phone_number and phone_number_verified claims. | authorizationCode, implicit, deviceCode, password |
| offline_access | Requests a refresh token so the client can obtain new access tokens without user interaction. | authorizationCode, deviceCode, password |
| groups | Okta-specific scope returning the end user's group memberships as a claim. In a broker network this is the likely carrier of brokerage/role entitlement, though no documentation confirms how Steadfast populates it. | authorizationCode, implicit, deviceCode, password |